Stack-based Buffer Overflow in cmd_ipaddr_conflict
CVE:
CVE-2026-55728
Product: Loytec / L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS, L-PAD, LIP-ME20xC
Severity: Low 3.8
Published: 24.07.2026
Advisory:
Read the advisory
A stack-based buffer overflow (CWE-121) in the cmd_ipaddr_conflict handler of /usr/bin/ltsudo on Loytec LIP-ME201C, L-INX, L-GATE, L-ROC, L-IOB, L-DALI, L-VIS and L-PAD through 8.4.16 (LINX-A64) allows an attacker in the superadmin group to abort the SUID-root process, or potentially elevate privileges, by supplying an overly long interface-name argument.